You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Suffering from CWE-613(insufficent session expiration). When user changing password, system not acquire user to re-login. The old session can be used to modify user information.
Description
Suffering from CWE-613(insufficent session expiration). When user changing password, system not acquire user to re-login. The old session can be used to modify user information.
Affacted version:
v1.3.1, also the version in the latest docker version
updated at Nov 10, 2022
POC:
The text was updated successfully, but these errors were encountered: